Our server costs ~$56 per month to run. Please consider donating or becoming a Patron to help keep the site running. Help us gain new members by following us on Twitter and liking our page on Facebook!
Current time: April 28, 2024, 6:25 pm

Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Computer--popups and re directions.
#11
RE: Computer--popups and re directions.
Well...technically spyware would still be a problem, as would self executing programs that gain admin access through exploitative means. Anyway, my comment was a joke. I thought that much was obvious from the start and end of it.
Reply
#12
RE: Computer--popups and re directions.
You're a Windows lover now Adrian? Does Kyu know? Big Grin
Reply
#13
RE: Computer--popups and re directions.
I still hate Windows...what made you think otherwise?
Reply
#14
RE: Computer--popups and re directions.
So do you think it's a decent operating system or not Huh
Reply
#15
RE: Computer--popups and re directions.
No.
Reply
#16
RE: Computer--popups and re directions.
In that case...
[Image: noose.jpg]
Reply
#17
RE: Computer--popups and re directions.
@Frodo


Sorry,Smitfraudfix no good. Now trying Malwarebytes


@Adrian; Arguments about which is the best OS have always bemused me. I've been using Windows since 1999 and XP since 2004. I happen to like it and have no intention of changing. (I have Ubuntu on my backup PC)

This current problem is the most irritating,but is solvable,even if I need to do a clean install.
Reply
#18
RE: Computer--popups and re directions.
In my opinion, if you need to do a clean install to solve a viral problem, the system hasn't been designed very well at all. Smile
Reply
#19
RE: Computer--popups and re directions.
(March 28, 2010 at 7:39 pm)Tiberius Wrote: In my opinion, if you need to do a clean install to solve a viral problem, the system hasn't been designed very well at all. Smile


Could not agree more ,the only reason I'm thinking about it is due to a combination of ignorance and frustration.


Below is the the logfile from the Highjack this scan. It is my understanding that anyone who knows his onions should be able to analyse the log and discover the problems.

I will be most grateful for any information from an onion afficionado.Big Grin


Logfile of Trend Micro HijackThis v2.0.3 (BETA)
Scan saved at 20:53:35, on 29.03.2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\bgsvcgen.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\UPHClean\uphclean.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\mswinext.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SCServer\SCServer.exe
C:\Program Files\TrendMicro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - (no file)
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: MSN Toolbar BHO - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\npwinext.dll
O3 - Toolbar: MSN Toolbar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files\MSN Toolbar\Platform\4.0.0379.0\npwinext.dll
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [Microsoft Default Manager] "C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\Video Converter Professional\codec\quicktime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [avast5] C:\PROGRA~1\ALWILS~1\Avast5\avastUI.exe /nogui
O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKCU\..\Run: [com.codeode.privacymantra] "C:\Program Files\Privacy Mantra 2.07\privacymantra.exe" -minimized
O4 - HKUS\S-1-5-19\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O13 - Gopher Prefix:
O17 - HKLM\System\CCS\Services\Tcpip\..\{9E2C2588-B87E-4668-BE80-9349EFE23B21}: NameServer = 122.49.191.252,121.48.191.253
O20 - AppInit_DLLs: C:\WINDOWS\system32\guard32.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
O23 - Service: B's Recorder GOLD Library General Service (bgsvcgen) - B.H.A Corporation - C:\WINDOWS\system32\bgsvcgen.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - Unknown owner - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe

--
End of file - 5772 bytes
Reply
#20
RE: Computer--popups and re directions.
Have you tried combofix yet?

http://www.bleepingcomputer.com/combofix...e-combofix
Best regards,
Leo van Miert
Horsepower is how hard you hit the wall --Torque is how far you take the wall with you
Pastafarian
Reply



Possibly Related Threads...
Thread Author Replies Views Last Post
  Ok computer techs, what say you? Brian37 82 6542 October 7, 2021 at 1:36 pm
Last Post: BrianSoddingBoru4
  Computer repair workshop customers I need your help purplepurpose 12 1123 March 18, 2019 at 9:33 am
Last Post: Gawdzilla Sama
  Your ideal home office/computer pit. Gawdzilla Sama 4 745 August 25, 2018 at 12:34 pm
Last Post: Gawdzilla Sama
  Too sexy for my computer Foxaèr 40 8102 May 13, 2018 at 2:54 am
Last Post: Succubus
  the boss checked my computer history and saw AF drfuzzy 64 7612 April 28, 2016 at 10:57 pm
Last Post: Society
  2 hours spent on computer for nothing. Brian37 19 3005 February 19, 2015 at 12:53 am
Last Post: Losty
  Anyone got a hobby .. or is that what computer games are for? Whateverist 53 5793 November 26, 2014 at 6:53 pm
Last Post: Heywood
  Computer odesy, I went for broke. Brian37 19 6119 December 20, 2013 at 12:31 pm
Last Post: Angrboda
  Are there any honest computer tec sites? Brian37 7 1935 December 18, 2013 at 4:48 am
Last Post: LastPoet
  Apparently this is a thing now...I'm an atheist, libertarian, ethical computer hacker. Ask me anything. Tiberius 41 14061 February 3, 2013 at 9:34 pm
Last Post: Shell B



Users browsing this thread: 1 Guest(s)